Ruijie Networks RG-UAC是中国锐捷网络(Ruijie Networks)公司的一个上网行为管理与审计产品。用于解决互联网审计问题。 Ruijie Networks RG-UAC 20240428及之前版本存在操作系统命令注入漏洞,该漏洞源于文件/view/dhcp/dhcpConfig/dhcp_relay_commit.php的参数interface_from会导致操作系统命令注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-4501 | 4.7 MEDIUM | Ruijie RG-UAC commit.php os command injection |
| CVE-2024-4502 | 4.7 MEDIUM | Ruijie RG-UAC dhcp_client_commit.php os command injection |
| CVE-2024-4504 | 4.7 MEDIUM | Ruijie RG-UAC commit.php os command injection |
| CVE-2024-4505 | 4.7 MEDIUM | Ruijie RG-UAC ip_addr_add_commit.php os command injection |
| CVE-2024-4506 | 4.7 MEDIUM | Ruijie RG-UAC ip_addr_edit_commit.php os command injection |
| CVE-2024-4507 | 4.7 MEDIUM | Ruijie RG-UAC static_route_add_ipv6.php os command injection |
No comments yet